What probably matters to youSection of the release
What
awsAuthRefresh and gcpAuthRefresh let you give Claude Code your own command for refreshing cloud credentials. These commands, and AWS credential-export commands like them, now run under a new supervisor. The supervisor enforces a 3-minute time limit and also reacts to cancellation and to Claude Code shutting down.
When it has to stop a command, it first ends the command's whole process tree, meaning the command plus any programs it started. On Windows this goes through PowerShell. Elsewhere it ends programs started in the same session. It then signals the command itself. It records why it stopped the command:
The timeout message is now shown only when the reason really was a timeout. During shutdown, the AWS path prints no error and the GCP path skips its error output. If ending the tree fails, it logs "auth refresh: process-tree kill failed" and falls back to stopping just the command.
Why
Previously only the refresh command itself was stopped, so helper programs it had launched, such as a browser login flow, could keep running in the background. Timeout messages are also more accurate, and quitting Claude Code no longer prints spurious credential errors.
The entry above is what we published on the day. These lines were added later, as Anthropic's own pages caught up, and they sit beside the original rather than replacing it.
Added sinceA small documentation edit on Claude Code on Claude Platform on AWS touched a line naming awsAuthRefresh after this was published.With `awsAuthRefresh` configured, run `/login`, select **3rd-party platform**, then select **Claude Platform on AWS · refresh credentials** under **Using 3rd-party platforms**. Claude Code runs the configured command and re-reads your AWS …claude-platform-on-awssee the edit
Confirmed sinceAnthropic's documentation has since written up awsAuthRefresh, on Claude Code on Amazon Bedrock.Mantle is an Amazon Bedrock endpoint that serves Claude models through the native Anthropic API shape rather than the Amazon Bedrock Invoke API. It uses the same [AWS credentials](#2-configure-aws-credentials) and [`awsAuthRefresh` configu…amazon-bedrocksee the edit
How sure we are
Two sources agreeTwo things we can check say the same as this entry.
Anthropic's documentation agreesAnthropic's documentation has since written up awsAuthRefresh, on Claude Code on Amazon Bedrock.
Anthropic's release notes agreeFixed gcpAuthRefresh/awsAuthRefresh login processes being left running (and holding their localhost callback port on Windows) when Claude…